URLhaus Database

You are currently viewing the URLhaus database entry for http://020dz.net/wp-includes/Documentation/uexc3qka1peegs/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:719063
URL: http://020dz.net/wp-includes/Documentation/uexc3qka1peegs/
URL Status:Offline
Host: 020dz.net
Date added:2020-10-19 17:41:28 UTC
Last online:2020-10-26 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-19 17:42:19 UTC to scipadmin2013{at}189[dot]cn)
Takedown time:7 days, 2 hours, 23 minutes Bad (down since 2020-10-26 20:06:00 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-21REP_PO_10212020EX.docdoc 2613c4d78a8daef9a9fc119072017d73ea4651234942d2d2c57683baae0e86d3Virustotal results 28.33%Heodo
2020-10-21V_E23M9J0CM.docdoc 52caf1a070aa97f41dee32688e691efd22f50efe87a8f77d4a36a28281c19136Virustotal results 32.08%Heodo
2020-10-21BPJ_100120_LXX_102120.docdoc f762fa2e19b39567f9550fec095e6bf1f7655fee2bfa11190f293736f74f57b5n/aHeodo
2020-10-21REP_ADR_100120_DIU_102120.docdoc 11c8cdc867668b0fe262189aaf49519ffbf3391fa8303856b0a08a52562cd611Virustotal results 25.81%Heodo
2020-10-21PO_10212020EX.docdoc fe15277e67a0613b3d95b606ce70df9644eda15dbf383f2523d089ba239fead9n/aHeodo
2020-10-21Z_4BWTBFZSC3V8IJ2J.docdoc c9005b11db864adc5c5393451fc9bb77fc67fab38c00ad806790a4ac7245c80aVirustotal results 27.42%Heodo
2020-10-21DOC_28068367.docdoc 87beff4cbd449ccd79a749854304ec24ebf96ade1f9f2b29e2c386a593e182a9Virustotal results 31.37%Heodo
2020-10-21BAL_34940659.docdoc ade7ee034ccce02004ebcf42088a9174448fe99ee93da5cc8c7a34fc42b5d7d2Virustotal results 30.19%Heodo
2020-10-21FILE_15036237.docdoc e88388bec3164944678627db062b753e76b6f7f710a9fabc43dfe69e7df2f366Virustotal results 27.42%Heodo
2020-10-21REP_AUI_100120_KBD_102120.docdoc 71e55ad14abd213d5627b65f8f045b2c9337c629a556868c692376c331d9fa58Virustotal results 26.23%Heodo
2020-10-2156164291.docdoc efc52b61116de71a3b3191b7bf3d79f9152dd3d3fa3d34889a4f11ef178d9e68Virustotal results 50.00%Heodo
2020-10-21BAL_A22DZ31W0EIY6P.docdoc e6335af6ecbbb9d05de5332fb55088045d8066babe6f9fb4cb05e7097ce44046Virustotal results 50.00%Heodo
2020-10-21REP_43128857.docdoc 453c4b4cf3a5fda7d48005d020112c06ebcbcf478ead4ebcfacf25576781bb2an/aHeodo
2020-10-21DOC_072756331.docdoc fcd4efaae00015d956a28f77cd06f9b327aab1c3f6a7604660cd4ce3e638e1edVirustotal results 49.15%Heodo
2020-10-21VM2250690839TB.docdoc f6ca28aa0ec1ee28ce246d787de062e5b78554ec2cfc62fbf00db085c177b074Virustotal results 53.85%Heodo
2020-10-21KHU_MNV_100120_LLL_102120.docdoc 85a0100950655dd48b3789ac075bbca0e9b4d1ba0e1a4fbc29ee363cc23da4f9Virustotal results 50.00%Heodo
2020-10-21PO_10212020EX.docdoc cda1bf170e4f678baeac39af84d506bde1d33ed9ccbc753273718f5bd2a503e0Virustotal results 53.45%Heodo
2020-10-21DOC_41841260.docdoc 71410da7fd254423681e9a41961a03bac9777fff1882cee09b6ddb785b38b923Virustotal results 49.15%Heodo
2020-10-2108707472332163191694884.docdoc fe1e5c66a4990cc515e5925db68def9f29f1893d9c6d3fa6b47e05f5c5f618ddVirustotal results 46.55%Heodo
2020-10-21IE8373521118NE.docdoc 56074bdd23c71846faa6ab17e8fc8485ce763ae329af8573a9e877dd6ec6513cVirustotal results 49.18%Heodo
2020-10-21FILE_PO_10212020EX.docdoc 230fc1531e7d113ebf83ea8dad03120965c293da08a2ae82305ac9cb61efe7b8Virustotal results 47.46%Heodo
2020-10-21W_RKR_100120_CSP_102120.docdoc a22d83a786eb7f5a04facaabb04117ecb5f8cdf09fcbb8405c0a70c97a51f225Virustotal results 43.40%Heodo
2020-10-21PO_10212020EX.docdoc 8ea38c51f8926ffa9ee61be53fc7ee3e4f968f2c7683bbc3b9320d14a2443067Virustotal results 43.33%Heodo
2020-10-21DOC_QYI_100120_FWF_102120.docdoc b0e434b1de80d97737347fcf4a28a60aad479593c4dde9c9611296cef08185e8Virustotal results 43.33%Heodo
2020-10-21REP_JOM_100120_KTS_102120.docdoc afcfe7ff49c2df7f47347c4c49d64ac3f027b1c79f5d090a0daf526fd65d859dVirustotal results 43.55%Heodo
2020-10-21FILE_IPK_100120_MKE_102120.docdoc 6eb67022c07e3f32436afc6e89eddb132a4c5d34d733c824ab3dabf51b7c712aVirustotal results 39.62%Heodo
2020-10-2180122885705195646655.docdoc 7b59e4314d2b1bbefd045815d54be5bd19315bcd13e3de6816a36bfd0930e032Virustotal results 39.62%Heodo
2020-10-21QC3567068955TR.docdoc a78451771b5a8e66fd912d10f9b621e52239473334785ec68755db5e60594ecbVirustotal results 40.32%Heodo
2020-10-21FG_PO_10212020EX.docdoc 583a7bdb6f07cd4359433a437ffcb7f9dbe1ed88b0a51acfe8ebd88294c940d4Virustotal results 38.33%Heodo
2020-10-20PO_10212020EX.docdoc 4ca0b870975a5eb49d50074ff6d1f7b8481ae723a8aef2ff922accd28ed9a96dVirustotal results 41.38%Heodo
2020-10-20BAL_CVZ_100120_GNH_102120.docdoc 8cadf5fc31643a1acc9b991d110e039e7e0520e94783c61d9caf5ccb2481915eVirustotal results 44.64%Heodo
2020-10-20INV_PO_10202020EX.docdoc ddfed25e7057b0ce36b9d4e9543d67b6533c84e1dd80a99777a26a0841ecc6c2Virustotal results 37.70%Heodo
2020-10-20X_41721011870377.docdoc 8c612654ee12c90cf40bbca45253b76bdb0f372fcdacde4ad9e56d6a9b2d7d51n/aHeodo
2020-10-20INV_2846909015.docdoc 7662b0553d21014cf864eda278f0660d88df84a5d5be9258f2b862fb35e96c03Virustotal results 46.67%Heodo
2020-10-20REP_53120218.docdoc e75423a49a99ba135e99625ee8258aafeae5055d75eb6cc6e821a4e30358aab5Virustotal results 52.54%Heodo
2020-10-2073554461691670578364462.docdoc 79121c5e523eeef2ed23da5881213eaca54c63d5733cc951ea4376e8cfbd41ffVirustotal results 50.82%Heodo
2020-10-20BAL_PO_10202020EX.docdoc 592e1b94138444f3b8002612cef1322999a466e791c4c85b060cfdab8880a0bfn/aHeodo
2020-10-20E_XP9056071512NK.docdoc 3daca8d729c038fedec6902fd156b95c3491e8c07c72d47d27352deed9b5f97bVirustotal results 49.06%Heodo
2020-10-20INV_XG1120351807HT.docdoc 49795d33d7c679a6a191590c742647402c2dcc89598c51f466f5e7a50d64f027Virustotal results 50.00%Heodo
2020-10-20BAL_PO_10202020EX.docdoc 59b11da7af351898590c99795dabaa6165941fec5c5e377a4b8edab164b057ddVirustotal results 48.33%Heodo
2020-10-20INV_PO_10202020EX.docdoc 731f9c60c47914b2dcc22536d709f5bf0aae0176c27bde61e5428e9a1afdc602n/aHeodo
2020-10-20BAL_EW7228711597DW.docdoc 31bf76bf160a14a606a6e20aeadfc5d32e5fd27d2cb375f7a2db68431d28e2faVirustotal results 50.82%Heodo
2020-10-20OA9693033042PY.docdoc 8bf073f99d2eaf5d61ab0aff7e4d8c764fdc59a98d011f9f0f45619b079fa2acVirustotal results 50.00%Heodo
2020-10-20INV_MG0747441013YN.docdoc 7a8552fd14f7e00f5b7ad3777e3b5c23f4b711495987f6103517d6428bc72c5fn/aHeodo
2020-10-20DOC_06517522.docdoc 55eab0dcfdc8ec941e8f44201bb5b1f6ff71cee7e07470e6ba65e8e318c35db4Virustotal results 50.94%Heodo
2020-10-20RUB_100120_XGD_102020.docdoc 5c2800e73f66d8ffd5060d01074dd76a5f63dfd7ef6bd2c73b63bccb6fddf9bfVirustotal results 50.00%Heodo
2020-10-20PO_10202020EX.docdoc 43daabd9b8ed1b9583cd3f14a3817f29bfbc447f9e0fbb513884fc702d0103d7Virustotal results 48.39%Heodo
2020-10-20FILE_XB9868934300ZV.docdoc a0e469d08ee726ce9fae3096bae0d3140afb1489feba6034d9eb67e59f84b1c2Virustotal results 48.39%Heodo
2020-10-2073749169418719516032.docdoc 6fbded5702d0539f9849e8daf7a3c5d017e03faefa23d711bb82b15c7250ad8fVirustotal results 48.15%Heodo
2020-10-20SJDU5XMSIEQ6FPY.docdoc 8750e31efa6cbb4e2c580cf4368c62b9a3ed4a1dac4135dc6ec05d91e1d7b1f1n/aHeodo
2020-10-20FOZ_FB4179670957BM.docdoc a5ec53f9d42c76a94d7761a9c4f23cad9c963c51bf30a3edff8e964caaec4ff7Virustotal results 47.54%Heodo
2020-10-20ZR0644368006MI.docdoc af4cc06abbc809d10b17b2ca3f1a49333e04f48c1cbdf3d439985b7c4350ccb3Virustotal results 49.18%Heodo
2020-10-20BAL_80599621.docdoc b115c55302deeae4e7e088c8dd801349c25089e867dc300251bb75936f96260fVirustotal results 43.33%Heodo
2020-10-20FILE_OVP_100120_RDP_102020.docdoc 7c97c02470de9409781c5d2124456af10eee6ca92664eccddf2ad51c9e729f33Virustotal results 43.33%Heodo
2020-10-20H_8W79YW89KXFOR09H.docdoc 8337cfc31ce0d2a11afe2ee6a21927a95783115eb07c10ad21f4f015338fc7d5Virustotal results 45.00%Heodo
2020-10-20SHAP_MZ0296287567UA.docdoc bcfc76295fd5ab5b017402035d604facabb641cb2db84dbabc36923bc8b576f8n/aHeodo
2020-10-20FILE_OA6454880136QE.docdoc ef9b5567f4d0522bdc9c446cfe86db8daf0e6c6a16d48cde2691b1f1a10b6d41n/aHeodo
2020-10-20PO_10202020EX.docdoc 44323308399663fcb908e6e32d51a26fda5bea8ff52732f3987b07c6d941fa96n/a Heodo
2020-10-19BAL_78486184.docdoc fcee7dbc5b468506c17395baa69a4ecf7efc61dc1994fc1f563c27cdd9792cd8Virustotal results 37.10%Heodo
2020-10-19A_NWR_100120_IMO_102020.docdoc 319f3bc0835158bc9ec5a351ae5e72d6f1e9f12a173caa968e5554716b39dd71Virustotal results 40.32%Heodo
2020-10-19REP_PO_10202020EX.docdoc 30152a6c0f59f8968dcc935f1384a25fcb1e25cd3467f63e7ce6412931166d02n/a Heodo
2020-10-19INV_13198889.docdoc c14feaadd5eecb3d93956659fc4ce80f6896577e1b166a134ddcc94309320623n/a Heodo
2020-10-19FILE_AZ4593476317AN.docdoc 1f5cb6e130ec0617eedc02d8554908a959a996089632142459c54f854cc52e16Virustotal results 37.10% Heodo
2020-10-19BAL_DCX_100120_RLZ_102020.docdoc 5a3a9a56661d12f1650cebe5f4a3cab2135efc8c3113959a28415186f0ec7148n/a Heodo
2020-10-19DOC_FN1873214117BM.docdoc 9a1400c87eb903c4fa8bf92ef429307203a804d6e4a589f6472ea7b00c4b75fdn/a Heodo
2020-10-19MD6898516205NI.docdoc 9f5fdb91a1f42a4310ae1270fd63e6cbf01bdfc5e68cf151a33907377c25597fVirustotal results 37.10% Heodo
2020-10-19K_3404950464337281444042216.docdoc f3534f5aeaff350f232360f9ef4a823ce2730f82a38e507da056e0b4679ab505Virustotal results 36.07% Heodo
2020-10-19SHOT_PO_10192020EX.docdoc ed3e3b72dfeedf40a774a601226f1b8fc1ce241bbda7ca9efffda0257c40c766n/a Heodo
2020-10-19REP_872984151.docdoc 002dba704064560393050b2b0a57a8a23d197d9cdd673263031bd0b27efda0f1Virustotal results 35.00% Heodo
2020-10-19PO_10192020EX.docdoc 0ea679788d2585f17ea28cf1aa4db04247858e6975b9f6529e1be13e205b5665Virustotal results 37.10%Heodo
2020-10-19INV_27800073.docdoc 6c67c435c6894c0ec992d34794f68a497c5c55778a4ea811b322b9c1f539841bn/a Heodo
2020-10-19FILE_PO_10192020EX.docdoc cddaf70d5e1afb6707dc5113f508919266360889e2b09df2f46916eb432f58eeVirustotal results 37.10% Heodo
2020-10-19KI1251978184IF.docdoc 01fef30b1519a4eaa558839ae9d4905b10f002571d44f140afb7fe2850c6fc20Virustotal results 33.87%Heodo